Detect all the coupling issues of your project with respect to the coupling rules you have defined.
63%
Total Score
caution
Usable with caveats: maintenance has gone quiet since its January 2025 release.
The package has existed since May 2016 with 13 releases, but it has had no release in roughly 20 months and none in the last 12 months. That is a meaningful maintenance concern, though the latest release included compatibility fixes.
There were zero commits and zero active maintainers in the last three months. Combined with the long release gap, this is the clearest sign that maintenance has slowed.
The repository has 18 open issues and no issues or pull requests were opened or closed in the last month. This suggests limited recent responsiveness, though the backlog alone is not evidence of abandonment.
The project uses Make and Composer, which supports reproducible development workflows. No security scanning tools were detected, leaving a modest transparency gap.
The repository has no security policy. For a package that analyzes project source code, this weakens the documented process for reporting and handling vulnerabilities.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
symfony/finder Version ^4.4||^5.0||^6.0||^7.0 | — | — |
symfony/console Version ^4.4||^5.0||^6.0||^7.0 | — | — |
symfony/filesystem Version ^4.4||^5.0||^6.0||^7.0 | — | — |
symfony/event-dispatcher Version ^4.4||^5.0||^6.0||^7.0 | — | — |
friendsofphp/php-cs-fixer Version ^2.1||^3.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.